A phisher is a cybercriminal who impersonates a legitimate entity to trick people into revealing confidential information, such as credentials, banking data, or card information, usually through phishing and other social engineering techniques.
Unlike a focus on the technique alone, the phisher is the threat actor behind the deception: they design convincing messages, channels, and pretexts to manipulate a victim's attention, urgency, or trust. Their goal is to obtain access or data they can later use unlawfully.
In an environment like LATAM, where email, messaging, and other digital channels are central to daily work, a Human Risk Management program is critical to reducing the impact of these actors. Whalemate, as an HRM platform for IT, CISO, and compliance teams, helps model context, simulate, train, measure, intervene, and report, so the organization does not rely on isolated training but on continuous human risk management.
This also aligns with PCI DSS 12.6, which requires a formal and ongoing security awareness program so staff know relevant threats like phishing, can identify them, react to them, and report them. In that framework, Whalemate's approach helps strengthen readiness against phishers and reduce the impact of their attacks.